392420BR
May 13, 2024
Czech Republic

Summary

The purpose of this job is to support the development and delivery of an information security training and awareness program across the company, oversee Information Security and Compliance training curriculum management and deliver security awareness training and lead cybersecurity study groups for technical security certifications. Location: Prague, Czech Republic and Barcelona, Spain #LI-Hybrid Novartis is unable to offer relocation support for this role: please only apply if this location is accessible to you.

About the Role

Major accountabilities:

  • Assist in the delivery of effective security training and awareness programs across functions and countries: coordinate activities, ensure effective communication, contribute to the development of training and awareness content.

  • Interact with internal and external security and compliance experts to identify industry trends and focus areas, evaluate applicability for Novartis, and provide and deliver on a recommended course of action.

  • Facilitate the learning to gain professional security certifications, i.e. CISSP, CISM, CISA and CCSP.

  • Manage the information security awareness training program on Infosec IQ and Infosec Skills platforms.

  • Generate training reports, create dashboards for stakeholders, and propose actions for improvement.

  • Benchmark versus industry standards around awareness and training.

  • Support the information security training and awareness program effectiveness evaluation.

  • Partner with and provide support to Country Information Security and Compliance team on aspects related to information security training and awareness.

In addition to the above responsibilities, the Information Security Awareness Senior Specialist will also:

  • Partner with Country Business and IT Associates, to implement Novartis Information Management Framework (IMF) and sustain its implementation within projects and operations of business organization.

  • Analyze impact of new technologies, business practices, and regulative changes on information security considering Cyber Security and Data Privacy Acts, Laws, and Regulations.

  • Continuously monitor and analyze risk of information assets and identify potential issues, and support and track risk/issue remediation activities based on agreed risk mitigation solutions.

Minimum Requirements:

  • Primary degree in IT or Marketing.

  • Completion of any of the following security certifications: CISSP, CISM, CCSP or CISA.

  • Experience delivering training to both technical and non-technical audiences.

  • Experience delivering security awareness programs and initiatives.

  • Experience managing training on a Learning Management System.

  • Business fluent in English (written and spoken).

  • Excellent communication and presentation skills, with customer-oriented mindset and good planning and organizational skills.

Languages :

  • English.

Why Novartis: Helping people with disease and their families takes more than innovative science. It takes a community of smart, passionate people like you. Collaborating, supporting and inspiring each other. Combining to achieve breakthroughs that change patients’ lives. Ready to create a brighter future together? https://www.novartis.com/about/strategy/people-and-culture

Join our Novartis Network: Not the right Novartis role for you? Sign up to our talent community to stay connected and learn about suitable career opportunities as soon as they come up: https://talentnetwork.novartis.com/network

Operations
CTS
Czech Republic
Prague
Full time
Regular
No
careers default image
392420BR

Senior Specialist Information Security Awareness

Apply to Job